Security Advisory

CVE-2022-23060

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-05-01 12:40:10
Last updated 2024-09-16 17:17:57
Assigner Mend
State PUBLISHED

Description

A Stored Cross Site Scripting (XSS) vulnerability exists in Shopizer versions 2.0 through 2.17.0, where a privileged user (attacker) can inject malicious JavaScript in the filename under the “Manage files” tab